cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
852
Views
5
Helpful
3
Replies

CSCup94684 - LSC phone certificates does not contain AIA and CDP attributes

Nadav
Level 7
Level 7

Hi everyone,

 

Can anyone confirm (preferably with documentation) that the lack of the AIA and CDP attributes in LSC's makes them inadequate for Microsoft NPS EAP-TLS authentication? This is assuming the CUCM cluster is in Mixed Mode, and CAPF is self-signed.

3 Replies 3

FrozenPea
Level 1
Level 1

I think the lack of the SubjectAlternativeName attribute might be the actual problem. 

Hi,

 

I am looking for documentation of this caveat, preferably from either Cisco or Microsoft.

vincent.morton
Level 1
Level 1

Did you ever manage to find documentaiton on this beyond that bug notice? We have a customer who appears to be having the same issue and it would be good to have something to refer them to.